Wednesday, March 12, 2014

CheckPoint VPN configuration

VPN client configuration for a Checkpoint (NGX) firewall, I used R70 but same configuration applies to any version older then R65,


So first thing we need is to create a user for the connection,
For the password use Checkpoint password,


Next create a Group to host the users used for the VPN,
Configuring the tunnel, I used all the default settings so I only added the Gateway and the Group

Now, configure the Gateway related, first allow IPSEC VPN
Create a Certificate
And allow office mode, in other words – a DHCP for the clients.
And last thing – managing the traffic, I intended for full access to the LAN network
There are many changes to be made here, for example obtaining the users from an LDAP server or using custom rules to filter the traffic.

No comments: